Paul links to an an article by Addy Santo who ".. wrote a very interesting blurb about the dangers of XPath Injection attacks .... he also linked to a report which illustrates a Blind XPath Injection attack by Sanctum."